CVE-2026-59095 | lobehub LobeChat prior 2.2.10-canary.18 Skill Import Service server-side request forgery (Issue 16536)
A vulnerability was found in lobehub LobeChat. It has been rated as critical. Affected by this vulnerability is an unknown functionality of the component Skill Import Service. This manipulation causes server-side request forgery.
This vulnerability is handled as CVE-2026-59095. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More